discourse/plugins
Roman Rizzi 835d2be4da
FIX: Rate limit and hijack certificate generation. (#8215)
To eliminate a DDOS attack vector, we're taking the following measures:

The endpoint will be rate-limited to 3 requests every 60 seconds (per user).
A 24 hours max-age cache header is sent with the response.
The route will be hijacked to generate the certificate in the background.
2019-10-21 13:14:15 -03:00
..
discourse-details Update translations 2019-09-26 04:29:44 +02:00
discourse-local-dates UX: emphasizes on local-dates being UTC in excerpts (#8208) 2019-10-17 10:18:06 -04:00
discourse-narrative-bot FIX: Rate limit and hijack certificate generation. (#8215) 2019-10-21 13:14:15 -03:00
discourse-nginx-performance-report DEV: Upgrading Discourse to Zeitwerk (#8098) 2019-10-02 14:01:53 +10:00
discourse-presence Update translations 2019-09-26 04:29:44 +02:00
lazy-yt DEV: consistent plugin nomenclature. 2019-08-22 11:08:06 +05:30
poll fix poll test 2019-10-16 21:53:37 -04:00